CGI abuses Family for Nessus

IDNameSeverity
23752Serendipity serendipity_event_bbcode.php Script serendipity[charset] Parameter Local File Inclusion
medium
23734WoltLab Burning Board Lite wbb_userid Parameter PHP Unset SQL Injection
medium
23733WoltLab Burning Board Lite thread.php decode_cookie Function threadvisit Cookie Parameter SQL Injection
high
23724Etomite CMS index.php id Parameter SQL Injection
medium
23652ELOG Web LogBook global Denial of Service
medium
23651Verity Ultraseek < 5.7 Multiple Vulnerabilities
critical
23641MODx CMS base_path Parameter Remote File Inclusion
medium
23640Exhibit Engine styles.php toroot Parameter Remote File Inclusion
medium
23639IBM WebSphere snoopservlet Path Disclosure
medium
23638IBM WebSphere Application Server '%20' Request Source Disclosure
medium
23624e107 class2.php e107language_e107cookie Cookie Traversal Local File Inclusion
high
22932PunBB include/common.php language Parameter Local File Inclusion
high
22926miniBB bb_func_txt.php pathToFiles Parameter Remote File Inclusion
medium
22922Segue CMS themesettings.inc.php themesdir Parameter Remote File Inclusion
high
22903Novell eDirectory iMonitor HTTP Protocol Stack (httpstk) Host HTTP Header Remote Overflow
high
22902Hosting Controller Multiple Script ForumID Parameter SQL Injection
high
22901IronMail IronWebMail IM_FILE Identifier Encoded Traversal Arbitrary File Access
medium
22900Ingo Foldername Arbitrary Command Execution
medium
22899Horde Ingo Software Detection
info
22876Cerberus Helpdesk rpc.php Arbitrary Ticket Information Disclosure
medium
22874Open Conference System < 1.1.6 Multiple Script fullpath Parameter Remote File Inclusion
high
22873phpMyConferences menus.inc.php lvc_include_dir Parameter Remote File Inclusion
medium
22868Adobe Breeze Directory Traversal Arbitrary File Access
medium
22867Web Site sitemap.xml File and Directory Disclosure
info
22541BlueShoes lib/googlesearch/GoogleSearch.php APP[path][lib] Parameter Remote File Inclusion
medium
22527Moodle 'index.php' 'tag' Parameter SQL Injection
medium
22512phpMyAdmin < 2.9.1 Multiple Vulnerabilities
medium
22509Mambo Open Source usercookie Parameter SQL Injection
medium
22497HAMweather Template.php do_parse_code Function Arbitrary Code Execution
high
22496OpenBiblio < 0.5.2 Multiple Scripts Local File Inclusion
high
22480UBB.threads doeditconfig Arbitrary Command Injection
high
22475DokuWiki fetch.php Multiple Parameter imconvert Function Arbitrary Command Execution
high
22448CakePHP vendors.php file Parameter Traversal Arbitrary File Access
medium
22413MyReview Admin.php email Parameter SQL Injection
high
22412Exponent CMS index.php view Parameter Local File Inclusion
medium
22409Claroline Software Detection
info
22408Limbo com_fm Component sql.php classes_dir Parameter Remote File Inclusion
medium
22368Site@School Multiple Script cmsdir Parameter Remote File Inclusion
high
22367Limbo Contact Component (com_contact) contact.html.php contact_attach Unrestricted File Upload
high
22366Dokeos claro_init_local.inc.php extAuthSource Parameter Array Remote File Inclusion
medium
22365Claroline claro_init_local.inc.php extAuthSource[newUser] Parameter Remote File Inclusion
medium
22364Moodle < 1.6.2 Multiple Vulnerabilities
high
22362TWiki 'filename' Parameter Traversal Arbitrary File Access
medium
22317RaidenHTTPD check.php SoftParserFileXml Parameter Remote File Inclusion
medium
22316PHP-Fusion extract() Global Variable Overwriting
low
22315DokuWiki doku.php X-FORWARDED-FOR HTTP Header Arbitrary Code Injection
high
22310PmWiki < 2.1.21 Global Variables Overwriting
high
22309SAP DB / MaxDB WebDBM Client Database Name Remote Overflow
critical
22307Mailman Utils.py Spoofed Log Entry Injection
low
22306WebAdmin < 3.2.6 MDaemon Account Hijacking
medium